The Free AI Index . Flash diagnostic

An improvised AI control? Better governance starts here.

Your free AI Index documents what you need to govern your artificial intelligence systems. Identify, map, measure, control.

Free · No commitment · Immediate result
Quebec firstLaw 25 and the realities of local organizations
Responsible AI PracticeRules, roles, and evidence grounded in your actual use
Full pictureUse, data, decisions, and control
Recognized frameworksNIST AI RMF · ISO 42001 · EU AI Act
Your context

Which sector do you work in?

The diagnostic adapts examples, risks, and regulatory reference points to your day-to-day reality.

Reference · Law 25, Quebec

An organization making a decision based exclusively on automated processing of personal information must inform the person concerned and allow them to submit observations to someone able to review the decision.

View the official source ↗
Your AI use

Where is AI already involved?

Select everything that resembles your reality, even if the tool has not been officially approved.

Why this question matters

The NIST AI RMF recommends maintaining an inventory of AI systems and allocating governance resources according to risk priorities.

NIST AI RMF, Govern 1.6 ↗
Your risk tolerance

How far do you let AI influence a decision?

Choose the answer closest to what actually happens, not what the policy is supposed to say.

Your risk signal

The more AI influences a decision affecting a person, the stronger supervision, traceability, and explanation must be.

Your safeguards

What already protects the organization?

Three simple controls reveal the gap between actual use and governance.

We know which AI tools are used, by whom, and with what data.
A clear rule governs which data may be entered into an AI tool.
A named person can stop, correct, or challenge an AI output.
Reference · ISO/IEC 42001

An AI management system connects policies, objectives, processes, responsibilities, and continual improvement—including for organizations that use AI services without developing them.

ISO/IEC 42001 ↗
Your preliminary profile

Your AI use is advancing faster than your safeguards.

Your organization appears open to AI and already uses it across several activities. The main risk comes less from the tools themselves than from limited visibility, inconsistent rules, and insufficient evidence of supervision.

Your primary gap

Control gap

38 points to close

Your AI use is advancing faster than your control mechanisms.

Directional indicators calculated from self-reported answers; they are neither an audit nor legal advice.

Three gaps to address

01
Incomplete or invisible useYou cannot govern a tool, dataset, or decision that no one has recorded.
02
Insufficiently governed dataTeams may send sensitive information to services that have not been assessed.
03
Inconsistent supervisionHuman validation exists, but its level does not always match the possible impact.

Your risk map

Data and privacyImmediate priority
Visibility of useImmediate priority
Human supervisionNeeds structure
Performance and qualityNeeds measurement
Law 25NIST AI RMFISO 42001EU AI Act

Your next steps

Your profile points to a clear priority: make AI use visible, govern data, and standardize supervision. Here is the recommended sequence.

01
Structure your AI governance

Document AI use, assign accountability, and set rules for data and supervision.

Advisory and governance
02
Assess your AI systems and agents

Map risks, dependencies, and the evidence required for each priority use case.

AIiD Program
03
Train teams around their actual AI use

Turn rules into practical habits for data, human validation, and escalation.

Team training
04
Have your responsible practice recognized

Measure progress, consolidate evidence, and prepare for the Responsible AI Practice designation.

Responsible AI Practice

Turn this profile into an action plan.

In 30 minutes, we can validate your main use cases, qualify the risks, and select the first useful deliverable.